Some careers shine brighter than others.
If you’re looking for a career that will help you stand out, join HSBC and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.
HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions.
Department: - Wholesale IT
- Work with GPS and Europe SVS, CCO and RCO functions to encourage consistency and reuse.
- Be responsible for, manage and mentor a team of RCO, Cyber SMEs/Analysts and Control automation engineers within Value Stream and delivery areas.
- Ensure understanding and application of IT FIMs and supporting standards across Value Stream including oversight on treatment paths and consistent risk assessment for all non-compliance instances. This includes partnership with CIB IT CCO and Control owners to achieve and maintain effective control environment.
- Manage consistent and timely engagement with internal and external audit.
- Interact with the Head of Value Streams by ensuring these Value Stream maintains its control posture and feeds into GPS and Europe IT governance processes as required. This will include support in Business facing conversations and partnership with CCO team in discussions with 2LOD to achieve consistent application of framework / controls library.
- Act as trusted advisor for R&C COE on how to properly manage their operational risk and all items related (Risk assessments, Control environment, automation, etc.).
- Manage the provision of specialist risk and control knowledge and insights Leading efforts to continuously improve the control environment and monitoring of risk, including behaviour and a positive risk culture across the remit area.
- Identify trends to anticipate future developments in the risk and control environment.
- Actively challenge poor, inefficient, or excessive controls, related tasks and behaviour.
- Manage the development and implementation of future-fit risk management frameworks.
- Influence and shape the development of regulatory frameworks in collaboration with internal parties.
- Provide updates to Senior Management on any relevant changes to policy or projects related to operational risk that have an impact on their area of responsibility.
- Create forward looking view of IT Risk & Control strategy for Value Stream/R&C COE.
- Partner with Group sponsors of projects to ensure clarity of requirements, ToR and scope of work
- Partner with CIB IT CCO, R&C and Cybersecurity lead to ensure cohesion and consistency of requests coming from IT Security, ensuring priorities are understood and are compliant consistently.
- Partner with Engineering teams and Cybersecurity to aid development of best practice around delivery (DevSecOps), helping to develop solutions to improve security and efficiency.
- Provide reporting on Risk and Control project/programme delivery into key committees such as RCMM, Business Ops and R&C committee, etc.
EU Regional Role - dimensions
- Knowledge Leadership
- Provide transparency of regional control requirements to mature and drive a comprehensive control strategy for Europe Technology.
- The role-holder must participate in regional forums/audit requirements to understand these requirements driving the Europe Controls strategy.
- Promote adherence to and communication of Technology Policy and Standards within the region, ensuring any regional specific requirements are communicated to Value stream RCOs
- Provide subject matter expertise during regional IT audits, and make positive recommendations to pre-empt issues
- Provide regional updates with respect to regional and global IT Control uplift programs
- Communicate region specific residual risk through reporting, business governance processes and regional forums
- Support the CIB and EU Business and Control functions to understand regional compliance, standards and governance requirements
- Drive culture change around proactive Risk & Control across the organization
- Stakeholder Management/Governance
- Provide visibility of status of regional action plans and external and internal audit and regulator issues
- Attend relevant governance forums and where applicable provide appropriate MI
- Provide regional stakeholder updates with respect to global IT Control uplift programs
Delivery/Compliance
- Own the risk & control relationship for regionally owned application owners
- Partner with Service Line RCOs to provide “follow the sun support” as necessary for Value Stream service owners based in the region, including on identifying/assessing controls, remediation activities and risk profiles
- Act as a gatekeeper in collection of artefacts and / or evidence for regional audits and regulatory exams, and act as POC for regional regulation owners
- Understand regional audit/regulatory requirements and ensure these are communicated and adhered by Value streams, using the Control Remediation team for cascade
- Partner with Value Stream RCOs to understand regional landscape, with regard to Risk Acceptance, issue management, and action plans
- Major Challenges (The challenges inherent in the role that require a continual test of the role holder’s abilities)
- To be flexible and adaptable in an environment of constantly changing priorities, challenging bureaucracy and staying true to the values and strategy of the Group. The role holder therefore needs to be able to quickly analyse complex situations, be dynamic and positive to embrace these changes, identify practical strategies and must establish the risk and control approach with countries accordingly to the latest developments.
- Being recognised as “expert” advisor - Staying abreast of external developments in the financial sector and understand and exploit the opportunities these present for HSBC. The Risk & Controls CoE and Europe lead eeds to demonstrate strong interpersonal and communication skills to work with various internal partners, VS/SVS teams and different departments towards common goals.
- Staying abreast of developments in ORMF – using these to drive changes to GPS & HBEU practices within HSBC as appropriate.
- To effectively manage executive stakeholder considerations while balancing Group priorities. The role holder needs to be flexible to balance risk and control and provide solid support and constructive advice to Senior Management in the management of IP1 Controls and delivery of GRAS priorities.
- Creating a true sense of urgency, pace, high performance and collaboration across business while delivering effective control and supporting efficient risk management.
- Staying abreast of external developments in global regulation and competitor activity and understanding the risks it poses to HSBC
- Enabling the business to grow safely by exercising keen appreciation of risk and delivering clear and correct advice to Exco and RMM. Business and customer needs to be taken into consideration while proactively safeguarding and ensuring that the highest standards of compliance and operational risk management are established within GPS & HBEU Technology
To be successful in this role, you should meet the following requirements:
Knowledge
- Outstanding understanding of HSBC Group structures, values, behaviours, processes and objectives
- Good working knowledge of functional area in an operational capacity
- A broad, enterprise-wide view of the business and varying degrees of appreciation for strategy, capabilities enabling technologies, and governance
- Strong understanding of the operational risk framework
Experience
- At least 8 years working in Risk & Controls in the financial sector.
- Proven experience of positive, constructive, challenging interactions with Senior Executives across the Group
- Proven ability in working across multi-disciplinary and multi-cultural diverse work environments
- Strong analytical background and proven ability in analytical rigor, including being able to contextualize data into business activities and conclusions
- Evidence of successfully managing risk reduction within the organisation.
Capabilities
- To be able to understand Information technology issues and be able to translate these so that they are clearly understood by the wider business.
- Outstanding relationship management and influencing skills.
- Ability to guide and support highly specialised and technial roles based on own knowledge and experience.
- Outstanding interpersonal and communication skills, with a proven ability to communciate effectively and confidently at all levels
- Leadership, management and coaching skills
- Ability to work across matrix structure and with different cultures.
You’ll achieve more when you join HSBC.
HSBC is committed to building a culture where all employees are valued, respected and opinions count. We take pride in providing a workplace that fosters continuous professional development, flexible working and opportunities to grow within an inclusive and diverse environment. Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website.
Issued by – HSBC Software Development India